I have a couple of servers that were hardened by our web guru. They are locked down pretty tight and refuse to give up information easily. I'm new to the cisco ACE and I'm trying to figure out if my statements are correct and the servers are locked down funny, or if I have the statements wrong/missing something in the probe itself.
Please note that i can get the servers I want just fine if I don't put the probe in. The file /index.shtml fine. I'm using head here because I don't care if the page is completely formed, just that it exists and there are some largish files on the page and I don't care to download the whole thing.
So I have the probe set in the serverfarm only (the rservers are currently set to "inservice" with no probe)
so the serverfarm has "probe ProdServerProbe"
the definition for the "Prod ServerProbe" is as follows
probe http ProdServerProbe
passdetect interval 60
request method head url /index.shtml
One thing I didn't get from the documentation (maybe I didn't read it well is) is whether passdetect inverval needs to be greater than interval
The server does have a /index.shtml
The server does respond to http on port 80
I can "bypass" the ACE by typing in the URL and I can see the page just fine
If I turn off probing the site seems to work just fine.
Please let me know if my config is screwy or if this is just a case of the server being locked down more than the ACE can bypass.